@phantom/react-native-sdk
Phantom Wallet SDK for React Native and Expo applications
Supply chain provenance
Status for the latest visible version.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:@phantom/crypto | AI (phantom-deps): Same-org dependency; likely used transitively via other @phantom/* packages in this monorepo. | ai | |
| phantom-deps | phantom-dep:@phantom/sdk-types | AI (phantom-deps): Same-org type-only dependency; likely used transitively in this monorepo. | ai | |
| phantom-deps | phantom-dep:@phantom/api-key-stamper | AI (phantom-deps): Same-org dependency; likely used transitively in this monorepo. | ai | |
| phantom-deps | phantom-dep:@types/bs58 | AI (phantom-deps): Type declaration package; loaded by convention, not direct import. | ai |
Versions (showing 10 of 10)
| Version | Deps | Published |
|---|---|---|
| 2.0.2 | 13 / 21 | |
| 2.0.1 | 13 / 23 | |
| 2.0.0 | 13 / 23 | |
| 1.0.7 | 13 / 23 | |
| 1.0.6 | 13 / 23 | |
| 1.0.5 | 13 / 23 | |
| 1.0.4 | 13 / 23 | |
| 1.0.3 | 12 / 23 | |
| 1.0.2 | 12 / 23 | |
| 1.0.0 | 12 / 23 |
v2.0.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.0.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.0.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.0.7
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.0.6
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.0.5
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.0.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.0.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.0.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.0.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.